漏洞描述 Adobe Commerce是美国奥多比(Adobe)公司的一种面向商家和品牌的全球领先的数字商务解决方案。 Adobe Commerce存在操作系统命令注入漏洞。攻击者利用该漏洞可以执行任意代码。
相关漏洞推荐 POC CVE-2024-4455: YITH WooCommerce Ajax Search <= 2.4.0 - Cross-Site Scripting POC aem-jcr-exposure: Adobe AEM JCR Compare Exposure POC wp-yith-woocommerce-wishlist-fpd: WordPress YITH WooCommerce Wishlist - Full Path Disclosure POC wp-woocommerce-admin-fpd: WordPress Plugin WooCommerce Admin (woocommerce-admin) Full Path Disclosure POC CVE-2022-28666: Custom Product Tabs for WooCommerce < 1.7.8 - Unauthenticated Toggle Content Setting Update POC aem-anonymous-write: Adobe Experience Manager (AEM) - Anonymous JCR Node Creation WordPress WooCommerce Designer Pro 插件 /wp-admin/admin-ajax.php wcdp_save_canvas_design_ajax 文件上传漏洞(CVE-2025-6440) WordPress Google for WooCommerce /wp-content/plugins/google-listings-and-ads/vendor/googleads/google-ads-php/scripts/print_php_information.php 信息泄露漏洞(CVE-2024-10486) Adobe Commerce/Magento SessionReaper /customer/address_file/upload 文件上传漏洞(CVE-2025-54236) (CVE-2015-10135)WPshop 2 E-Commerce插件任意文件上传漏洞 Adobe ColdFusion /hax/..CFIDE/wizards/common/utils.cfc 权限绕过漏洞(CVE-2023-38205) (CVE-2025-54253)Adobe Experience Manager配置错误导致任意代码执行漏洞 Code-Projects E-Commerce Website SQL注入漏洞